General

  • Target

    7723ecdaa7848d9749ab4a5a1878f0b0_NeikiAnalytics

  • Size

    8KB

  • Sample

    240509-s3aqmacc85

  • MD5

    7723ecdaa7848d9749ab4a5a1878f0b0

  • SHA1

    3233aed74a7e8867cdd013db464e2ffc02b269a8

  • SHA256

    a11b40f95a5718651867a18797eef2a04049ea5e0f643b92ee7750a40ff6c41c

  • SHA512

    3c6c731445ae0700a6a7ac19646cb91230d88b1a99f327eb929e3f15284c15221a43657c92dfe79b51d0946237ddd28c569d517a06aaffd847cb917be551c8b6

  • SSDEEP

    192:IFsXvZsk3d/ZcfFaQZT6CSJB8Oye3Q4pagU5lLf:asX7d/ZctaQZT6CSB8Oye3Q4K5pf

Score
10/10

Malware Config

Targets

    • Target

      7723ecdaa7848d9749ab4a5a1878f0b0_NeikiAnalytics

    • Size

      8KB

    • MD5

      7723ecdaa7848d9749ab4a5a1878f0b0

    • SHA1

      3233aed74a7e8867cdd013db464e2ffc02b269a8

    • SHA256

      a11b40f95a5718651867a18797eef2a04049ea5e0f643b92ee7750a40ff6c41c

    • SHA512

      3c6c731445ae0700a6a7ac19646cb91230d88b1a99f327eb929e3f15284c15221a43657c92dfe79b51d0946237ddd28c569d517a06aaffd847cb917be551c8b6

    • SSDEEP

      192:IFsXvZsk3d/ZcfFaQZT6CSJB8Oye3Q4pagU5lLf:asX7d/ZctaQZT6CSB8Oye3Q4K5pf

    Score
    10/10
    • Upatre

      Upatre is a generic malware downloader.

    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

    • Executes dropped EXE

    • Loads dropped DLL

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Tasks